QNAP fixes NAS backup software zero-day exploited at Pwn2Own
During the Pwn2Own Ireland 2024 competition, security researchers used a significant zero-day vulnerability that QNAP has fixed to hack a TS-464 NAS device on Thursday.
The company's disaster recovery and data backup product, HBS 3 Hybrid Backup Sync version 25.1.x, has an OS command injection vulnerability that is the source of the security hole, which has been tracked as CVE-2024-50388.
HBS 3 Hybrid Backup Sync has reportedly been impacted by an OS command injection vulnerability. According to a security alert released by QNAP on Tuesday, if the vulnerability is exploited, remote attackers may be able to carry out arbitrary operations read more about QNAP fixes NAS backup software zero-day exploited at Pwn2Own.
Get up to date on the latest cybersecurity news and enhance your kn...

